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Top Stories 

• Researchers found that the peer-to-peer (P2P) Zeus banking trojan recently received an 
update that also installs a rootkit driver, making the trojan difficult to remove from infected 
systems. - SC Magazine (See item 9) 

• An accident on Highway 101 in Santa Barbara, California, April 21 ki lled 3 people and led 



to a nearly 13 hour closure of all southbound lanes. - Santa Barbara Noozhawk (See item 



• Oklahoma officials suspended Statewide end-of- instruction exams April 21 due to 
computer problems that disrupted about 6,000 students’ ability to take the test. - KJRH 2 
Tulsa (See item 20 ) 

• Verizon published its 2014 Data Breach Investigations Report, focusing on cyber and 
physical data breaches across several industries. - Softpedia (See item 26 ) 
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Energy Sector 



1. April 22, Green Bay Press-Gazette - (Wisconsin) Man rescued from fuel storage 
tank in Green Bay. A U.S. Oil Co., worker was rescued and transported to an area 
hospital April 21 after falling in a large fuel storage tank at a tank farm in Green Bay. 
Source: 

http://www.greenbavpressgazette.com/article/20140421/GPG0101/304210322/Man- 
rescued-from- fuel- storage-tank 

2. April 21, Oakland Tribune - (California) PG&E pleads not guilty in criminal case 
connected to fatal San Bruno explosion. Pacific Gas and Electric Company pleaded 
not guilty April 21 to 12 criminal felony charges stemming from a 2010 natural gas 
explosion in San Bruno that killed 8 people, injured 66 others, and destroyed 38 homes. 
The charges allege the utility intentionally violated pipeline safety laws. 

Source: http://www.mercurynews.com/business/ci 25607898/pg-e-pleads-not-guilt- 
criminal-case-connected 



For another story, see item 26 
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Chemical Industry Sector 

Nothing to report 



T Return to topi 

Nuclear Reactors, Materials, and Waste Sector 

3. April 21, Associated Press - (Connecticut) Connecticut’s nuclear plant can use 
warmer water. The U.S. Nuclear Regulatory Commission announced April 21 that the 
Millstone nuclear power plant in Waterford was granted permission to use water as 
warm as 80 degrees Fahrenheit to cool the Millstone 2 reactor in order to prevent 
unnecessary shutdowns during extreme hot weather, an increase of 5 degrees 
Fahrenheit from the previous limit. 

Source: http://www.sacbee.com/2014/04/21/6341148/millstone-gets-us-ok-to-use- 
warmer.html 

T Return to top i 

Critical Manufacturing Sector 

4. April 22, Detroit News - (Michigan) Pallet fire at factory shuts down road in 
Sterling Heights. A two-alarm fire April 22 caused significant damage to the Industrial 
Metal Coatings facility in Sterling Heights, damaging the building and a storage yard 
containing pallets and automotive parts. 
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Source: 

http://www.detroitnews.com/article/20140422/METR003/304220Q45/1361/Pallet-fire- 

at-factory-shuts-down-road-in-Sterling-Heights 

5. April 22, U.S. Consumer Product Safety Commission - (National) Troy-Bilt electric 
leaf blowers recalled by MTD due to laceration hazard. MTD announced a recall of 
around 134,000 Troy-Bilt TB180B electric leaf blowers sold at Lowe’s stores and 
online due to the potential for the leaf blowers’ impellers to break and strike the 
operator. 

Source: http://www.cpsc.gov/en/Recalls/2014/Troy-Bilt-Electric-Leaf-Blowers- 
Recalled-by-MTD/ 

6. April 22, U.S. Consumer Product Safety Commission - (National) Remington electric 
leaf blowers recalled by MTD due to laceration hazard. MTD announced a recall of 
around 24,000 Remington RM180B electric leaf blowers sold at various retail stores 
and online due to the potential for the leaf blowers’ impellers to break and strike the 
operator. 

Source: http://www.cpsc.gov/en/Recalls/2014/Remington-Electric-Leaf-Blowers- 
Recalled-by-MTD/ 

For another story, see item 26 
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Defense Industrial Base Sector 



See item 26 
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Financial Services Sector 

7. April 22, WGCL 46 Atlanta - (Georgia) Husband of reality star back in federal 
court on theft charges. An Atlanta man appeared before federal court April 21 on 
charges that he allegedly created fake collection companies in order to obtain personal 
information from credit history databases and use the information to commit identity 
theft, allegedly obtaining nearly $3 million in loans in victims’ names. 

Source: http://www.cbs46.com/storv/25301906/husband-of-realitv-star-back-in-federal- 
court-on-theft-charges 

8. April 22, Associated Press - (Kansas) Former employee of southeast Kansas bank 
pleads guilty to embezzling more than $180,000. A former employee at a branch of 
Exchange State Bank in St. Paul, Kansas, pleaded guilty April 21 to embezzling over 
$180,000 from the bank by stealing interest due on certificates of deposit and other 
funds between 2007 and 2013. 

Source: 
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http ://w w w .therepublic .com/vie w/story/7 4e 1 a67 2df354562a 1 6b 1 3cd 1 0 1 c9020/KS — 
Bank- Employee-Embezzlement 



9. April 21, SC Magazine - (International) Critical update makes P2P Zeus trojan even 
tougher to remove. Fortinet researchers found that the peer-to-peer (P2P) Zeus 
banking trojan recently received an update that also installs a rootkit driver, making the 
trojan difficult to remove from infected systems. 

Source: http://www.scmagazine.com/critical-update-makes-p2p-zeus-troian-even- 
tougher-to-remove/article/343551/ 

10. April 21, Reuters - (California) San Francisco man pleads guilty in Marvel insider 
trading case. A San Francisco man pleaded guilty April 21 to trading on inside 
information ahead of the Walt Disney Co. acquisition of Marvel Entertainment, 
illegally making $192,000 from the trading. 

Source: http://money.msn.com/business- 
news/article.aspx?feed=QBR&date=20 1 4042 1 &id= 17541559 

11. April 21, U.S. Securities and Exchange Commission - (New Jersey) SEC charges a 
former biopharmaceutical company executive and two others with insider trading. 
The U.S. Securities and Exchange Commission (SEC) charged a former Genta Inc. 
executive and two others April 21 in U.S. District Court in New Jersey with insider 
trading based on nonpublic information concerning an experimental drug. The three 
individuals allegedly made around $139,000 in illegal gains from the trading, and all 
three agreed to a settlement with the SEC which includes civil penalties and the return 
of the alleged ill-gotten gains. 

Source: 

http://www.sec.gOv/News/PressRelease/Detail/PressRelease/1370541541673#.UlZ3dP 

ldYKA 



For another story, see item 26 
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Transportation Systems Sector 

12. April 22, KKTV 11 Colorado Springs - (Colorado) Small plane crash starts grass fire 
at Meadow Lake Airport. A small plane practicing taking off and landing at the 
Meadow Lake Airport near Peyton, experienced mechanical issues on its final takeoff 
which caused the plane to land hard and burst into flames. Authorities are investigating 
the crash. 

Source: http://www.kktv.com/home/headlines/Srnall-Plane-Crash-Starts-Grass-Fire-at- 
Meadow-Lake- Airport-2560805 5 1 .html 

13. April 21, WHNT 19 Huntsville - (Alabama) Small plane crash-lands at Huntsville 
International Airport. Authorities are investigating a Cessna Skyhawk aircraft with 
two passengers onboard that crashed short of the runway and flipped at the Huntsville 
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International Airport in Alabama April 21. Both passengers were released with no 
serious injuries. 

Source: http://whnt.com/2014/04/21/breaking-small-plane-crash-lands-at-huntsville- 
international-airport/ 

14. April 21, KDVR 31 Denver - (Colorado) EB 1-70 reopens at Airport Blvd. after fatal 
crash. Police shut down all eastbound lanes of Interstate 70 in Aurora for nearly 6 
hours April 21 after the handlebars of two motorcycles attempting to pass a semi-truck 
touched, sending one motorcyclist under the rear wheels of the semi-truck, killing him 
instantly. 

Source : http://kdvr.com/2014/04/21/eb-i-7Q-closed-at-tower-road-after-crash- 
involving-motorcycle-semi/ 

15. April 21, Santa Barbara Noozhawk - (California) Three dead in crash on Highway 
101 in Santa Barbara. A car struck a guardrail, overturned, and stopped in the middle 
of Highway 101 in Santa Barbara April 21, causing a second car to collide with it and 
leading to a nearly 13 hour closure of all southbound lanes. Three people were killed, 
one person was seriously injured, and another individual was arrested on suspicion of 
driving under the influence. 

Source : 

http://www.noozhawk.com/article/three dead in crash on highway 101 in santa ba 
rbara 20140421 



16. April 21, KGO 7 San Francisco - (California) Girl dies after crash on Hwy 85 in 
Cupertino. Northbound Highway 85 near Cupertino was shut down for several hours 
April 21 after a minivan parked on the shoulder of the highway was rear-ended by a 
car, sending the minivan across northbound lanes of the highway and causing another 
vehicle to crash into the minivan. One person was killed and three others were injured. 
Source : http://abclocal.go.com/kgo/story?section=resources/traffic&id=951 1487 

For another story, see item 26 
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Food and Agriculture Sector 

17. April 21, U.S. Food and Drug Administration - (National) Wegmans Food Markets, 
Inc. issues allergy alert on undeclared egg in Wegmans Easter Bread, 17 oz. 

Wegmans Food Markets, Inc., issued a voluntary recall of all 17-ounce packages of its 
Wegmans Easter Bread (braided loaf) due to undeclared egg. 

Source: http ://w w w .fda. go v/Safety/Recalls/ucm394249 .htm 

18. April 19, U.S. Food and Drug Administration - (National) Hickory Farms issues 
allergy alert on Chipotle Ranch Sauce due to undeclared milk. The U.S. Food and 
Drug Administration announced that Hickory Farms, Inc., recalled its Chipotle Ranch 
Sauce due to undeclared milk. 

Source: http://www.fda.gov/Safety/Recalls/ucm394062.htm 
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For another story, see item 26 
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Water and Wastewater Systems Sector 

19. April 21, Rock Hill Herald - (South Carolina) Another Tega Cay sewage spill 

prompts no-swim advisory on Lake Wylie. Heavy rainfall April 19 overwhelmed the 
Tega Cay Water Service sewage system and caused a manhole on Manawa Lane to 
overflow and drain about 300 gallons of sewage into the Lake Wylie cove prompting 
the water authority to issue a no-swim advisory in the affected area April 20. 

Source: http://www.heraldonline.com/2014/04/21/5886573/utility-officials-blame- 
heavy.html?sp=/100/104/ 
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Healthcare and Public Health Sector 

See item 26 
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Government Facilities Sector 

20. April 22, KJRH 2 Tulsa - (Oklahoma) End-of-year testing halted statewide after 
technical issues, outages reported on testing site. Oklahoma officials suspended 
Statewide end-of-instruction exams April 21 due to computer problems that disrupted 
about 6,000 students’ ability to take the test. Several districts reported faulty computers 
at the start of the exams and authorities believe the failure is due to a CTB/McGraw 
Hill-related issue. 

Source: http://www.kirh.com/news/local-news/computer-problems-shut-down-end-of- 
year-standardized-tests-statewide 

21. April 22, WTVF 5 Nashville - (Tennessee) Charges pending in Hickman Co. school 
bus crash that injured 3. Two students and a bus driver were injured April 21 in 
Hickman County after the bus driver veered off the road and crashed the school bus 
into a fence, later striking a tree. 

Source: http://www.newschannel5.com/story/25303833/2-students-driver-iniured-in- 
hickman-co-school-bus-crash 

22. April 21, WNWO 24 Toledo - (Ohio) 3 students injured after car rear-ends West 
Unity School bus. An accident involving a West Unity School bus left three students 
injured after a car rear-ended the bus on U.S. 20 in West Unity April 21. 

Source: http://www.northwestohio.com/news/storv.aspx?id=1033872#.UlaMlPldVg2 

23. April 21, Albany Times Union - (New York) Watervliet school gets 2 bomb threats. 
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Two bomb threats that were called in prompted school officials to evacuate students 
and cancel classes at Watervliet Junior-Senior High School in New York April 21. 
Police searched the building after both threats and did not find anything suspicious. 
Source: http://www.timesunion.com/local/article/Watervliet-school-gets-2-bomb- 
threats-5417799.php 

For another story, see item 26 
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Emergency Services Sector 

24. April 21, Associated Press - (California) Minimum-security inmate returns after 
walking away from southern California prison camp. An inmate turned himself in 
April 20 at the Oak Glen Conservation Camp near Yucaipa after walking away from 
the Riverside County prison camp April 18. Officials are considering filing new 
charges against the inmate. 

Source: 

http://www.tribtown.com/view/storv/6a97fa64107543df841eaaal523d5b6e/CA~ 

Missing-Prison-Inmate 
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Information Technology Sector 

25. April 22, Help Net Security - (International) Supposedly patched router backdoor 
was simply hidden. A security researcher who discovered a backdoor vulnerability in 
several popular home routers found that the firmware update issued by manufacturer 
Sercomm does not close the vulnerability but instead hides the backdoor. The backdoor 
can then be opened after sending a specific network packet to the router from the local 
area network (LAN) or the Internet service provider (ISP), allowing attackers reset the 
device’s configuration, username, and password to default settings. 

Source: http://www.net-securitv.org/secworld.php?id=16721 

26. April 22, Softpedia - (International) Verizon publishes 2014 Data Breach 
Investigations Report. Verizon published its 2014 Data Breach Investigations Report, 
focusing on cyber and physical data breaches across several industries. The report 
found 198 point of sale (POS) intrusions during 2013, with retail, accommodation, and 
food services industries the most targeted, among other findings. 

Source: http://news.softpedia.com/news/Verizon-Publishes-2014-Data-Breach- 
Investigations-Report-438708.shtml 

27. April 22, Softpedia - (International) Django 1.6.3 released to address 3 security 
issues. The developers of the Django framework for Python released new versions of 
the framework, closing three security vulnerabilities. 

Source: http://news.softpedia.com/news/Diango-l-6-3-Released-to-Address-3-Security- 
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Issues-438666.shtml 



28. April 21, Threatpost- (International) Oracle gives Heartbleed update, patches 14 
products. Oracle released updates for five products April 21, closing vulnerabilities 
related to the Heartbleed vulnerability in OpenSSL. 

Source: http://threatpost.com/oracle-gives-heartbleed-update-patches-14- 
products/105576 

For another story, see item 9 

Internet Alert Dashboard 



To report cyber infrastructure incidents or to request information, please contact US-CERT at soc@us-cert.gov or 
visit their Web site: http://www.us-cert.gov 

Information on IT information sharing and analysis can be found at the IT ISAC (Information Sharing and 
Analysis Center) Web site: http://www.it-isac.org 
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Communications Sector 

Nothing to report 
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Commercial Facilities Sector 

29. April 22, KOLN 10 Lincoln - (Nebraska) Two arrested after meth lab bust in 
Lincoln apartment. Two individuals were arrested and charged April 22 after 
authorities discovered a methamphetamine lab at the Colonial Apartments in Lincoln 
while responding to the complex on a report of a possible fire. Two people were taken 
to an area hospital with minor injuries, and the building was evacuated for at least 7 
hours while crews cleared the scene. 

Source: http://www.1011now.com/home/headlines/Hazrnat-Crews-Investigate- 
Possible-Chemical-Lab-in-Lincoln- Apartment-25599885 1 .html 

30. April 22, Steubenville Herald Star - (Ohio) Man arrested in area burglaries. Police 
arrested a man April 21 in connection with a string of six burglaries in Harrison and 
Jefferson Counties during the weekend of April 19, and an attempted armed robbery at 
a Steubenville McDonald’s. The suspect was found driving a stolen Steubenville city 
water department van that was used during several of the burglaries. 

Source: http://www.hsconnect.com/page/content.detail/id/597898/Man-arrested-in- 
area-burglaries.html 



31. April 19, KPRC 2 Houston - (Texas) Lockdown lifted at Kemah Walmart after 
bomb squad investigation. Employees and customers of a Walmart in Kemah were 
placed on lock down for over 5 hours April 19 while authorities investigated an 
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incident in the store’s parking lot involving a man who had several unknown devices in 
his pockets and attached to his body. The suspect was arrested and charged with 
making terroristic threats and a hoax bomb threat. 

Source: http://www.click2houston.com/news/customers-in-kemah-walmart-on- 
lockdown-bomb-squad-investigating/25565176 

32. April 19, WFTV 9 Orlando - (Florida) Suspect charged in bomb hoax at Lowe's in 
Leesburg. Police arrested a man in connection to a bomb hoax that prompted the 
evacuation of the Lowe’s retail store in Leesburg, Florida, for over 3 hours April 19. 
Police responded to the store after receiving reports of a man acting suspiciously and 
found four suspicious devices in the parking lot during their search. 

Source: http://www.wftv.com/news/news/local/leesburg-lowes-evacuated-due-bomb- 
threat/nfdPL/ 



33. April 19, Virginian-Pilot - (Virginia) No explosives found after threat at Military 
Circle mall. The Gallery at Military Circle in Norfolk was evacuated and partially 
closed April 19 due to a bomb threat that was called in to the mall. Authorities searched 
and cleared the scene after around 4 hours. 

Source: http://hamptonroads.com/2014/04/no-explosives-found-after-threat-military- 
circle-mall 



For another story, see item 26 
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Dams Sector 



Nothing to report 
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Department of Homeland Security (DHS) 

DHS Daily Open Source Infrastructure Report Contact Information 



About the reports - The DHS Daily Open Source Infrastructure Report is a daily [Monday through Friday] 
summary of open-source published information concerning significant critical infrastructure issues. The DHS Daily 
Open Source Infrastructure Report is archived for 10 days on the Department of Homeland Security Web site: 
http://www.dhs.gov/IPDailyReport 

Contact Information 

Content and Suggestions: Send mail to cikr.productfeedback@hq.dhs.gov or contact the DHS 

Daily Report Team at (703) 942-8590 

Subscribe to the Distribution List: Visit the DHS Daily Open Source Infrastructure Report and follow 

instructions to Get e-mail updates when this information changes . 

Removal from Distribution List: Send mail to support @ govdelivery.com . 



Contact DHS 

To report physical infrastructure incidents or to request information, please contact the National Infrastructure 
Coordinating Center at nicc@hq.dhs.gov or (202) 282-9201. 

To report cyber infrastructure incidents or to request information, please contact US -CERT at soc@us-cert.gov or visit 
their Web page at www.us-cert.gov . 

Department of Homeland Security Disclaimer 

The DHS Daily Open Source Infrastructure Report is a non-commercial publication intended to educate and inform 
personnel engaged in infrastructure protection. Further reproduction or redistribution is subject to original copyright 
restrictions. DHS provides no warranty of ownership of the copyright, or accuracy with respect to the original source 
material. 
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